Hello
we intend to to install OSSEC server in secure subnet and/but some Windows clients in the DMZ should be monitored. Our security policy is, that no host in the DMZ can establish a connection to the secure subnet behind the firewall... As much I do know OSSEC Windows client does push its monitoring informations(initiate the connection) to the OSSEC server. Is there a way to change this behaviour in order that the OSSEC sever does "request" the required informations from the clients to be monitored? Thank's a lot for any feedback/clarifications! John
